> cat /dev/github | grep security-tools

~/hackyfeed $

A cybersecurity tools aggregator — discover the latest pentesting, red team, and offensive security tools from GitHub.

sort: ( this page )

nightcrawler-mitm

Nightcrawler-mitm is a mitmproxy addon designed for security researchers, facilitating passive analysis, crawling, and active scanning of web applications. Its notable features include a comprehensive vulnerability confidence system that assigns risk levels to findings, advanced scanning capabilities for various vulnerabilities like SQL injection and XSS, automated proof-of-concept generation, and smart targeting to enhance scanning efficiency. Additionally, it supports extensive customization through command-line options for tailored assessments.

netexec-automator-beta

NetExec Automator is a parallel credential testing tool designed to exploit all 10 NetExec (nxc) protocols, allowing users to perform extensive authentication attempts using either combination or linear modes for credential pairing. Its notable features include live feedback on valid credentials and timeouts, support for local authentication variants, parallel execution with configurable worker counts, and detailed output summaries to streamline the penetration testing workflow.

MCPScan

MCPScan is an offensive security auditing tool specifically designed for MCP servers to identify vulnerabilities and misconfigurations. It conducts comprehensive checks across eight categories, including tool poisoning, credential leakage, remote code execution, and supply chain issues, allowing developers to mitigate security risks in AI-connected environments effectively. Notable features include detailed vulnerability reporting, CVE references for known issues, and the ability to detect common attack vectors and exposed sensitive data.

MCP-Penetration-testing

MCP-Penetration-testing is a comprehensive security framework focused on the OWASP Model Context Protocol (MCP) Top 10 vulnerabilities, designed for auditors, pentesters, students, and enterprises. Notable features include a checklist-driven approach that outlines attack vectors, detection techniques, and remediation strategies for each vulnerability, alongside a scoring system to evaluate MCP security maturity. The repository serves as both a pentesting playbook and a learning resource, providing a detailed roadmap for mitigating MCP risks and improving overall security posture.

LeakScope

LeakScope is a tool designed for the discovery and analysis of exposed services and data leaks using Shodan and ZoomEye, enabling users to search, triage, preview, and dump relevant information accessible without authentication. Notable features include dual-provider discovery, customizable queries, and a comprehensive database that supports multiple data types and export options, all housed within a user-friendly interface that visually represents data usage and search statistics. The tool facilitates the identification of potential threats and vulnerabilities in various services without the need for exploitation, making it suitable for security researchers and IT professionals.

KittyLoader

KittyLoader is an advanced evasive loader developed in C and Assembly, primarily designed for educational purposes in the realm of defensive cybersecurity. Its capabilities include early execution hijacking, module hiding through unlinking from various lists, and a range of sophisticated anti-analysis techniques like multilayer scoring and jittered operational delays to evade detection. Additionally, it employs encryption for embedded payloads using high-entropy randomness, allowing for stealthy API resolution and library loading, which significantly enhances its evasion tactics against static and dynamic analyses.

Kali-Linux-Complete-Setup

The "Kali-Linux-Complete-Setup" repository is a comprehensive collection of cybersecurity notes aimed at reinforcing foundational knowledge in the field. It consolidates learning materials derived from formal training sessions, offering structured content, personal insights, and practical examples to aid both personal learning and community contribution. This repository serves as an educational resource for aspiring cybersecurity professionals.

java-reverse-tcp

Java Reverse TCP is a versatile tool designed for establishing reverse shell communications with remote hosts using JAR, JSP, and Java files. It operates seamlessly across multiple operating systems, automatically detecting the environment and enabling compatible interactions with `ncat` or `multi/handler`. Notable features include the ability to handle various shell types and user-friendly setup instructions for deploying and utilizing the tool in educational contexts.

ios-penetration-testing-cheat-sheet

The iOS Penetration Testing Cheat Sheet serves as a comprehensive resource for security professionals engaging in penetration testing of iOS applications. It provides a structured list of tools, techniques, and resources specifically tailored for testing iOS environments, particularly focusing on jailbreak scenarios and tool usage on Kali Linux. Notable features include sections for inspecting IPAs, searching for sensitive files, and executing security best practices, alongside recommendations for further reading on relevant security standards and methodologies.

InlineWhispers3

InlineWhispers3 is a tool designed to modify SysWhispers3 generated files for compatibility with Cobalt Strike's Beacon Object Files (BOFs), specifically utilizing indirect system calls to enhance evasion from endpoint detection and response (EDR) systems. By eliminating direct system calls, it significantly improves the stealth of red team operations on Windows platforms. The tool's notable features include its ability to merge output files and the straightforward integration of generated syscalls into project code for seamless usage.

injectum

Injectum is a modern, type-safe Rust library designed for process injection tailored for Red Teams and Offensive Security operations. Its primary use case is to provide a structured framework for executing various injection strategies while managing memory safety and minimizing artifacts to evade detection by Endpoint Detection and Response (EDR) systems. Notable features include a modular architecture that allows dynamic swapping of injection techniques, a fluent Builder API for compile-time error detection, and robust payload management to enhance operational security.

InfosecHouse

Infosec House is a comprehensive repository offering a wide range of cybersecurity tools and resources tailored for both offensive and defensive strategies. It features over 1,100 entries across various categories including AI, API pentesting, incident response, malware analysis, and OSINT, providing cybersecurity professionals with essential resources to enhance their operations. Users can contribute to the repository by submitting pull requests or reporting issues, facilitating a collaborative environment for continuous improvement.

indextree

indextree is a tool designed for analyzing and filtering directory listing pages of web servers, allowing users to focus on specific files or directories based on various criteria such as file extensions or keyword matching. Its notable features include options for displaying directory or file mode, a configurable output tree structure, and protection against infinite loops during recursive scans. The tool is intended for educational and research purposes within the cybersecurity domain.

IconJector

IconJector is a Windows Explorer DLL injection tool that uses the change icon dialog to trick users into loading a malicious DLL into the explorer process. The tool allows for both user-driven DLL loading disguised as an icon and programmatic DLL injection into the explorer, leveraging the properties of DLLs and their optional DllMain functions to execute arbitrary code within the explorer's memory. Key features include the ability to create an icon representation of a DLL and various injection techniques, providing significant potential for exploitation.

httpworker

HTTPWorker is a Flask-based command and control (C2) framework designed for security competitions, utilizing custom Windows implants written in C++. Its primary use case involves coordinating and managing remote Windows clients with capabilities such as command execution, file management, system information retrieval, and user interface access through an authentication-protected web app. Notable features include Docker support for deployment, integration with Pwnboard for beacon tracking, and customizable implant configurations to evade detection.

goop

Goop is a robust tool designed for extracting complete Git repositories from websites, emphasizing comprehensive dumps and accommodating various edge cases often overlooked by other tools. It utilizes multiple strategies to recover files and objects from .git directories, even in the absence of directory listings. Notable features include directory management options, handling of rate limits, and the ability to process a list of domain names for batch operations.

Google-Hack-Search

Google Hack Search is a specialized search engine that focuses exclusively on IT security content, aggregating information from over 240 curated sources to eliminate irrelevant results. Its primary use case is to facilitate targeted research in cybersecurity by providing relevant findings without marketing noise or AI-driven content. Notable features include the ability to apply Google Dorking techniques for refined searches and a customizable list of sources to enhance the search experience.

GoatOS

GoatOS is a specialized Linux distribution designed for web and API penetration testing, streamlining the security assessment process with a curated set of tools. It features pre-installed utilities for reconnaissance, scanning, fuzzing, and exploitation, alongside a unique reporting generator and integrated wordlists. Distinct from broader distributions like Kali or Parrot, GoatOS focuses specifically on web and API security, minimizing bloat while maximizing efficiency and ease of use.

GitHush

GitHush is a cybersecurity tool designed to monitor public GitHub repositories for the inadvertent exposure of sensitive information, such as API keys and credentials, using the GitHub Events API. It automates the detection process through regular expression signatures, dynamic database awareness, and structured JSONL logging for easy integration with threat intelligence systems. Notable features include high-signal filtering, language/framework awareness, and support for over 20 common credential formats.

ghostpack-binaries

GhostPack Binaries is a repository offering precompiled binaries and scripts for various security and red team tools compatible with Windows, Linux, and macOS. Its primary use case is to facilitate authorized security testing and educational purposes, providing streamlined access to essential utilities while emphasizing the importance of ethical usage. Notable features include cross-platform support and a focus on prebuilt security tools, enabling users to conduct red teaming activities efficiently.

fsociety

fsociety is a collection of offensive security plugins for Claude Code designed to facilitate penetration testing across various domains, including web applications, reverse engineering, and operational security. Each plugin offers a self-contained toolkit that includes specialized AI agents for automating multi-step operations, enhancing the effectiveness of security assessments. Noteworthy features include a comprehensive offensive lifecycle in plugins like elliot, and the ability to interactively set up engagements with tools for target selection and goal definition.

forbidden

Forbidden is a cybersecurity tool designed to bypass 4xx HTTP response status codes, specifically targeting `403 Forbidden` and `401 Unauthorized` responses. Built using Python Requests and PycURL, it offers features for testing various HTTP methods, open redirects, and out-of-band interactions, while also supporting stress testing capabilities. Future enhancements aim to include options for suppressing console output and comprehensive testing for HTTP request headers and traffic manipulation techniques.

flipperzero

FlipperZero is a tool designed for executing BadUSB attacks using scripts based on the DuckyScript language on the Flipper Zero device. Its primary use case revolves around both defensive and offensive scenarios, facilitating security awareness demonstrations or performing penetration testing via various pre-defined scripts for phishing, pin brute-forcing, and credential exfiltration. Notable features include the ability to automate web actions, access sensitive information, and deploy awareness campaigns by executing scripts that interact with commonly used applications and services.

find-cve-agent

find-cve-agent is an open-source tool designed for discovering real CVEs in open-source packages using a structured multi-agent approach. It features a comprehensive workflow encompassing target discovery, vulnerability validation, and responsible disclosure, equipped with a six-gate verification process to minimize false positives. This tool is particularly aimed at enhancing the effectiveness of security researchers by leveraging a coordinated team of agents specializing in different aspects of the vulnerability hunting process.

file-scraper

File Scraper is a tool designed for extracting sensitive information from files using custom regular expressions, and it generates an interactive HTML report based on the findings. Its primary use case is in security assessments and data validation, where users can employ their regex expertise to customize the search patterns for various types of sensitive data, such as authentication tokens and credentials. Notable features include the ability to style the generated reports and collect specific data formats like Base64 and PEM, enhancing the tool's versatility for educational and practical cybersecurity applications.